Home / exploitsPDF  

Kiuwan Local Analyzer / SAST / SaaS XML Injection / XSS / IDOR

Posted on 10 June 2024

Kiuwan SAST versions prior to 2.8.2402.3, Kiuwan Local Analyzer versions prior to master.1808.p685.q13371, and Kiuwan SaaS versions prior to 2024-02-05 suffer from XML external entity injection, cross site scripting, insecure direct object reference, and various other vulnerabilities.